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In the Claims 

1. (Currently Amended) A method for providing access to personal information, the 
method comprising the steps of: 

receiving, by an electronic device, a request for access to the personal 
information, the request originating from an entity external to the electronic device; 
displaying information requested in the request: 
Hpfmnirnn ^ on a case-bv-case basis access rights for a requestor ; and 
providing the external entity with cryptographically protected access information 
allowing the entity access to the personal information existing within a personal database 
also existing external to the electronic device. 

2. (Original) The method of claim 1 wherein the step of providing the external entity with 
the cryptographically protected access information comprises the step of providing the 
external entity with a token, the token comprising information taken from the group 
consisting of: 

• an identification label for an element within the database, 

• a type of action to be performed on the database, 

• an identity of a requesting party, 

• a validity period, and 

• a digital signature or message authentication code that certifies the token's 
authenticity and integrity. 

3. (Original) The method of claim 1 wherein the database is controlled by a user of the 
electronic device. 

4. (Original) The method of claim 1 wherein the database is controlled by an owner of the 
personal information. 

5. (Original) The method of claim 1 wherein the database and the electronic device is 
controlled by an owner of the personal information. 
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6. (Original) The method of claim 1 wherein the step of providing the external entity with 
cryptographically protected access information allowing the entity access to the personal 
information comprises the step of providing the external entity with a token allowing the 
entity to read the personal information. 

7. (Original) The method of claim 1 wherein the step of providing the external entity with 
cryptographically protected access information allowing the entity access to the personal 
information comprises the step of providing the external entity with a token allowing the 
entity to write personal information into the database. 

8. (Currently Amended) A method for providing access to personal information, the 
method comprising the steps of: 

receiving, on an electronic device, a request for the personal information, the 
request originating from an entity external to the electronic device; 
displaying information requested in the request: 
dfttermininp. on a case-hv-case basis access rights for a requestor: 

providing a personal database, external to the electronic device, with 
cryptographically protected access information instructing the database to forward the 
personal information to the external entity. 

9. (Original) The method of claim 8 wherein the step of providing the personal database 
with the cryptographically protected access information comprises the step of providing 
the database with a token, the token comprising information taken from the group 
consisting of: 

• an identification label for an element within the database, 
m a type of action to be performed on the database, 

• an identity of a requesting party, 

• a validity period, and 

• a digital signature or message authentication code that certifies the token's 
authenticity and integrity. 

1 0. (Original) The method of claim 8 wherein the database is controlled by a user of the 
electronic device. 
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1 1 . (Original) The method of claim 8 wherein the database is controlled by an owner of 
the personal information. 

12. (Original) The method of claim 8 wherein the database and the electronic device is 
controlled by an owner of the personal information. 

13. (Original) The method of claim 8 wherein the step of providing the database with 
cryptographically protected access information comprises the step of providing the 
database with a token allowing the external entity to read the personal information. 

14. (Original) The method of claim 8 wherein the step of providing the database with 
cryptographically protected access information allowing the entity access to the personal 
information comprises the step of providing the database with a token allowing the entity 
to write personal information into the database. 

15. (Currently Amended) An electronic device comprising: 

an authorization manager receiving and difiplaviag_ a request for the personal 
information, the request originating from an entity external to the electronic device and 
verifying the requestor of the personal information as legitimate; and 

a token generator, providing either an external database or the external entity with 
cryptographically protected access infonnation determined on a case-b v-case basis, and 
instructing the database to forward the personal information to the external entity. 

16. (Original) The apparatus of claim 15 wherein the cryptographically protected access 
information comprises a token comprising information taken from the group consisting 
of: 

• an identification label for an element within the database, 

• a type of action to be performed on the database, 

• an identity of a requesting party, 

• a validity period, and 

• a digital signature or message authentication code that certifies the token's 
authenticity and integrity. 

17. (Original) The method of claim 15 wherein the database is controlled by a user of the 
electronic device. 



4 

PMX 518 1 RCVD AT 3/15/2005 8:13:41 AM [Eastern Standard Time] 1 SVIfclMMFXRF-lffl 1 DM293Q6 1 CSID: 1 S475763750 * DURATION (mm-ss):02-W 



Mar-15-05 07:13am Frora-MOTOROLA 18475763750 T-385 P.006/008 F 



18. (Original) The method of claim 15 wherein the database is controlled by an owner of 
the personal information. 
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